Medium severity5.4NVD Advisory· Published Sep 5, 2022· Updated Jun 17, 2026
CVE-2022-3127
CVE-2022-3127
Description
Cross-site Scripting (XSS) - Stored in GitHub repository jgraph/drawio prior to 20.2.8.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- jgraph/jgraph/drawiov5Range: unspecified
Patches
Vulnerability mechanics
References
2- github.com/jgraph/drawio/commit/59887e45b36f06c8dd4919a32bacd994d9f084danvdPatchThird Party Advisory
- huntr.dev/bounties/6cea89d1-39dc-4023-82fa-821f566b841anvdExploitPatchThird Party Advisory
News mentions
0No linked articles in our index yet.